tensorflow has 419 CVEs on record between 2019 and 2024. The median CVSS is 5.5 (medium), with 6 rated critical. None have a confirmed exploitation report.
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 5.5
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
Products
- tensorflow 419
Worst active — by depth score
CVE-2021-37678Critical· 9.3Arbitrary code execution due to YAML deserialization63CVE-2022-21728High· 8.1Out of bounds read in Tensorflow57CVE-2021-41208Critical· 9.3Incomplete validation in boosted trees code51CVE-2020-26269Critical· 9.1TensorFlow vulnerable to heap out of bounds read in filesystem glob matching50CVE-2020-15206Critical· 9.0Denial of Service in Tensorflow50
tensorflow vulnerabilities
CVEs affecting tensorflow, newest first. Open any entry for full detail, references, and exploit status.
419 CVEsRSS
CVE-2021-37656High· 7.1Reference binding to nullptr in `RaggedTensorToSparse`
Reference binding to nullptr in `RaggedTensorToSparse`
CVE-2021-37682Medium· 4.4Use of unitialized value in TFLite
Use of unitialized value in TFLite
CVE-2021-37690Medium· 6.6Use after free and segfault in shape inference functions
Use after free and segfault in shape inference functions
CVE-2021-37668Medium· 5.5FPE in `tf.raw_ops.UnravelIndex`
FPE in `tf.raw_ops.UnravelIndex`
CVE-2021-37654High· 7.3Heap OOB and CHECK fail in `ResourceGather`
Heap OOB and CHECK fail in `ResourceGather`
CVE-2021-37691Medium· 5.5FPE in LSH in TFLite
FPE in LSH in TFLite
CVE-2021-37644Medium· 5.5`std::abort` raised from `TensorListReserve`
`std::abort` raised from `TensorListReserve`
CVE-2021-37673Medium· 5.5`CHECK`-fail in `MapStage`
`CHECK`-fail in `MapStage`
CVE-2021-29618Low· 2.5Crash in `tf.transpose` with complex inputs
Crash in `tf.transpose` with complex inputs
CVE-2021-29541Low· 2.5Null pointer dereference in `StringNGrams`
Null pointer dereference in `StringNGrams`
CVE-2021-29525Low· 2.5Division by 0 in `Conv2DBackpropInput`
Division by 0 in `Conv2DBackpropInput`
CVE-2021-29527Low· 2.5Division by 0 in `QuantizedConv2D`
Division by 0 in `QuantizedConv2D`
CVE-2021-29613Medium· 6.3Incomplete validation in `tf.raw_ops.CTCLoss`
Incomplete validation in `tf.raw_ops.CTCLoss`
CVE-2021-29524Low· 2.5Division by 0 in `Conv2DBackpropFilter`
Division by 0 in `Conv2DBackpropFilter`
CVE-2021-29615Low· 2.5Stack overflow in `ParseAttrValue` with nested tensors
Stack overflow in `ParseAttrValue` with nested tensors
CVE-2021-29546Low· 2.5Division by 0 in `QuantizedBiasAdd`
Division by 0 in `QuantizedBiasAdd`
CVE-2021-29535Low· 2.5Heap buffer overflow in `QuantizedMul`
Heap buffer overflow in `QuantizedMul`
CVE-2021-29592Medium· 4.4Null pointer dereference in TFLite's `Reshape` operator
Null pointer dereference in TFLite's `Reshape` operator
CVE-2021-29605High· 7.1Integer overflow in TFLite memory allocation
Integer overflow in TFLite memory allocation
CVE-2021-29521Low· 2.5Segfault in SparseCountSparseOutput
Segfault in SparseCountSparseOutput
CVE-2021-29614High· 7.1Interpreter crash from `tf.io.decode_raw`
Interpreter crash from `tf.io.decode_raw`
CVE-2021-29537Low· 2.5Heap buffer overflow in `QuantizedResizeBilinear`
Heap buffer overflow in `QuantizedResizeBilinear`
CVE-2021-29528Low· 2.5Division by 0 in `QuantizedMul`
Division by 0 in `QuantizedMul`
CVE-2021-29557Low· 2.5Division by 0 in `SparseMatMul`
Division by 0 in `SparseMatMul`
CVE-2021-29584Low· 2.5CHECK-fail due to integer overflow
CHECK-fail due to integer overflow
CVE-2021-29540Low· 2.5Heap buffer overflow in `Conv2DBackpropFilter`
Heap buffer overflow in `Conv2DBackpropFilter`
CVE-2021-29530Low· 2.5Invalid validation in `SparseMatrixSparseCholesky`
Invalid validation in `SparseMatrixSparseCholesky`
CVE-2021-29580Low· 2.5Undefined behavior and `CHECK`-fail in `FractionalMaxPoolGrad`
Undefined behavior and `CHECK`-fail in `FractionalMaxPoolGrad`
CVE-2021-29549Low· 2.5Division by 0 in `QuantizedAdd`
Division by 0 in `QuantizedAdd`
CVE-2021-29619Low· 2.5Segfault in `tf.raw_ops.SparseCountSparseOutput`
Segfault in `tf.raw_ops.SparseCountSparseOutput`